SecOps forum
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Forum Posts

Resolved! Integration capabilities

Hi there, I'm currently looking into Threat Intelligence and the integration capabilities, such as Enrich observables, Threat lookup etc... In the product documentation I see: 'Each integration capability persists in the Integration Capability [sn_se...

Greg33 by Tera Guru
  • 649 Views
  • 2 replies
  • 0 helpfuls

Vulnerability Response - how to create a new detection key?

Hello!  I'm working on custom integration with 3rd party scanner and from what I read on docs, all 3rd party scanners have their detection key specified. How can I configure a new detection key for my custom integration?  Thanks,

Joanna17 by Tera Contributor
  • 609 Views
  • 3 replies
  • 1 helpfuls

Detection lifecycle - Detection states

Hi,  I'm working on the custom scripted REST API for VR module. We create detections and VIT out of data send from 3rd party scanner data. Since no plugin is involved and we create this api from scratch, could you please explain the lifecycle of the ...

Joanna17 by Tera Contributor
  • 379 Views
  • 1 replies
  • 0 helpfuls

Resolved! Vulnerability Response - no NVD match for CWE-540

Hi!  I'm going through the Vulnerability Response module and I'm trying to understand nuances of NVD and CWE integrations. I have a case of some github related vulnerabilities that match CWE-540 (inclusion of sensitive information in source code), ho...

Joanna17 by Tera Contributor
  • 1249 Views
  • 6 replies
  • 3 helpfuls

Issue to automatic remediation task creation

We are facing an issue where multiple remediation tasks are getting created automatically for VITs and AVITs. Triggers are many - - closure of a VUL/AVUL record - rejection of an exception record - reopening of a VUL/AVUL record- marking of false pos...

ankitadutta1_0-1732292294507.png

Stale Detection Closure (Auto-Close) for Vulnerable Items

I have a requirement to activate Auto-Closure of stale vulnerable items. The client wants to keep the OOB configuration for the 3 rules and turn them active. I want to test the Stale auto closuire by triggering the Scheduled Job "Auto-Close Stale Det...

LittbarskiA_0-1729655581974.png
LittbarskiA by Tera Contributor
  • 1134 Views
  • 1 replies
  • 0 helpfuls

Notification for Vulnerable Item 'x' days past due

I am working on a client request to send notifications to different users, whenever the remediation target is missed on vulnerable items. I have my remediation target rule working, but I can't find a way of achieving this scenario. On day that target...

LittbarskiA_0-1729654938791.png
LittbarskiA by Tera Contributor
  • 455 Views
  • 1 replies
  • 0 helpfuls

Remediation Task rule triggering

Hi All,Can anyone please tell me when Remediation Task rules are triggered? I have created a few rules that group the vulnerable items per CI. Whenever the items are getting imported, the rules are not always triggered. Is there a scheduled job that ...

Resolved! Not able to reapply CI lookup rules

Every time I try to reapply the CI lookup rules in sub-PROD instances, I get the following Info message : "An integration run or proof granularity job is in progress. You can create a new job after it is complete." Is there any way that I can find ou...

NIST NVD and TVM CVE Information

Hello, we are using both NIST ... (CVE Only) and TVM Vulnerability(CVE) integration, they both update National Vulnerability Database Entries (sn_vul_nvd_entry). The NIST NVD integration is executed first and TVM later (in couple of hours). We see nu...

LuKu_0-1729686603793.png
LuKu by Tera Contributor
  • 2088 Views
  • 4 replies
  • 2 helpfuls